Brocade Fabric OS before Brocade Fabric OS 9.1.1c, 9.2.0 contains a vulnerability when using various commands such as “chassisdistribute”, “reboot”, “rasman”, errmoduleshow, errfilterset, hassiscfgperrthreshold, supportshowcfgdisable and supportshowcfgenable commands that can cause the content of shell interpreted variables to be printed in the terminal.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22408 | Vendor Advisory |
| https://security.netapp.com/advisory/ntap-20230908-0007/ | Third Party Advisory |
Configurations
History
18 Sep 2024, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | Brocade Fabric OS before Brocade Fabric OS 9.1.1c, 9.2.0 contains a vulnerability when using various commands such as “chassisdistribute”, “reboot”, “rasman”, errmoduleshow, errfilterset, hassiscfgperrthreshold, supportshowcfgdisable and supportshowcfgenable commands that can cause the content of shell interpreted variables to be printed in the terminal. |
02 Nov 2023, 02:04
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
04 Aug 2023, 17:29
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* | |
| References | (MISC) https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22408 - Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| First Time |
Broadcom
Broadcom fabric Operating System |
|
| CWE | CWE-77 |
01 Aug 2023, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-08-01 21:15
Updated : 2024-09-18 22:15
NVD link : CVE-2023-31429
Mitre link : CVE-2023-31429
JSON object : View
Products Affected
broadcom
- fabric_operating_system
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
